I am developing a web-services based project which is supposed to use SAML as security token for communication with a centralized server... The centralized server maintains the roles & policies associated with other entities in the ecosystem. The centralized server is not shared with us yet, I only have specification that it will maintain roles & policies and expose its REST based APIs ... One doubt that I have is if Restlet & SAML can alone be used in the centralized server to implement Roles & Policies or if Roles & Policies will necessarily be implemented using a LDAP server .. Please give your valuable suggestion , Thanking everyone in anticipation
------------------------------------------------------ http://restlet.tigris.org/ds/viewMessage.do?dsForumId=4447&dsMessageId=2661628

